Issue metadata
Sign in to add a comment
|
Crash in GrCircleBlurFragmentProcessor::CreateCircleBlurProfileTexture |
||||||||||||||||||||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=5032270918582272 Fuzzer: bj_broddelwerk Job Type: mac_asan_chrome Platform Id: mac Crash Type: UNKNOWN Crash Address: 0x624e000cff00 Crash State: GrCircleBlurFragmentProcessor::CreateCircleBlurProfileTexture GrCircleBlurFragmentProcessor::Create GrRRectBlurEffect::Create Recommended Security Severity: Medium Regressed: https://cluster-fuzz.appspot.com/revisions?job=mac_asan_chrome&range=395419:395560 Minimized Testcase (1.07 Kb): https://cluster-fuzz.appspot.com/download/AMIfv97rlWFPCOwOm-3Q9gjkuOgkqY_ubrNSgxlwwlMABVJoJeL5DtRHJu-9razPJspi_Vomx7524zSZT5nPTR-KLrdUi4O9ICRuL1zeuiT_w0ziFF_hQM6PCVZr_3aRSJEfyfSAT4KzjyTR8uDVpq-AYDPkrIQsKg Filer: inferno See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Jun 12 2016
,
Jun 13 2016
,
Jun 14 2016
,
Jun 17 2016
Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6173107731824640 Fuzzer: bj_broddelwerk Job Type: mac_asan_chrome Platform Id: mac Crash Type: UNKNOWN Crash Address: 0x604e00045998 Crash State: GrCircleBlurFragmentProcessor::CreateCircleBlurProfileTexture GrCircleBlurFragmentProcessor::Make GrRRectBlurEffect::Make Recommended Security Severity: Medium Regressed: https://cluster-fuzz.appspot.com/revisions?job=mac_asan_chrome&range=395419:395560 Minimized Testcase (0.60 Kb): https://cluster-fuzz.appspot.com/download/AMIfv96in2NUt6wGcX-y4XqV3GYbdfaDYfT7_q2TiDANAQFA12iUQSjoNmk2Q12h0oUrbhjw0LUpVzsnewWzrPrs0_tyJmlg10NZZcG0i_9g855hcATPOIoYxd-BrHcMx1GkqgerAJLvfadLdg9UyBUqSwKUCvIGnQ Filer: inferno See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Jun 26 2016
bsalomon: Uh oh! This issue still open and hasn't been updated in the last 14 days. This is a serious vulnerability, and we want to ensure that there's progress. Could you please leave an update with the current status and any potential blockers? If you're not the right owner for this issue, could you please remove yourself as soon as possible or help us find the right one? If the issue is fixed or you can't reproduce it, please close the bug. If you've started working on a fix, please set the status to Started. Thanks for your time! To disable nags, add the Disable-Nags label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Jul 10 2016
bsalomon: Uh oh! This issue still open and hasn't been updated in the last 28 days. This is a serious vulnerability, and we want to ensure that there's progress. Could you please leave an update with the current status and any potential blockers? If you're not the right owner for this issue, could you please remove yourself as soon as possible or help us find the right one? If the issue is fixed or you can't reproduce it, please close the bug. If you've started working on a fix, please set the status to Started. Thanks for your time! To disable nags, add the Disable-Nags label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
,
Jul 21 2016
,
Aug 3 2016
This hasn't had any updates for a couple of months. reed/rmistry/bsalomon: could you please help triage? Thanks!
,
Aug 9 2016
I have a repro of this.
,
Aug 17 2016
ClusterFuzz has detected this issue as fixed in range 412227:412240. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=6173107731824640 Fuzzer: bj_broddelwerk Job Type: mac_asan_chrome Platform Id: mac Crash Type: UNKNOWN Crash Address: 0x604e00045998 Crash State: GrCircleBlurFragmentProcessor::CreateCircleBlurProfileTexture GrCircleBlurFragmentProcessor::Make GrRRectBlurEffect::Make Recommended Security Severity: Medium Regressed: https://cluster-fuzz.appspot.com/revisions?job=mac_asan_chrome&range=395419:395560 Fixed: https://cluster-fuzz.appspot.com/revisions?job=mac_asan_chrome&range=412227:412240 Minimized Testcase (0.60 Kb): https://cluster-fuzz.appspot.com/download/AMIfv96in2NUt6wGcX-y4XqV3GYbdfaDYfT7_q2TiDANAQFA12iUQSjoNmk2Q12h0oUrbhjw0LUpVzsnewWzrPrs0_tyJmlg10NZZcG0i_9g855hcATPOIoYxd-BrHcMx1GkqgerAJLvfadLdg9UyBUqSwKUCvIGnQ?testcase_id=6173107731824640 See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Aug 17 2016
ClusterFuzz has detected this issue as fixed in range 412269:412297. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=5032270918582272 Fuzzer: bj_broddelwerk Job Type: mac_asan_chrome Platform Id: mac Crash Type: UNKNOWN Crash Address: 0x624e000cff00 Crash State: GrCircleBlurFragmentProcessor::CreateCircleBlurProfileTexture GrCircleBlurFragmentProcessor::Create GrRRectBlurEffect::Create Recommended Security Severity: Medium Regressed: https://cluster-fuzz.appspot.com/revisions?job=mac_asan_chrome&range=395419:395560 Fixed: https://cluster-fuzz.appspot.com/revisions?job=mac_asan_chrome&range=412269:412297 Minimized Testcase (1.07 Kb): https://cluster-fuzz.appspot.com/download/AMIfv97rlWFPCOwOm-3Q9gjkuOgkqY_ubrNSgxlwwlMABVJoJeL5DtRHJu-9razPJspi_Vomx7524zSZT5nPTR-KLrdUi4O9ICRuL1zeuiT_w0ziFF_hQM6PCVZr_3aRSJEfyfSAT4KzjyTR8uDVpq-AYDPkrIQsKg?testcase_id=5032270918582272 See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Aug 17 2016
ClusterFuzz testcase is verified as fixed, closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.
,
Aug 17 2016
,
Nov 23 2016
This bug has been closed for more than 14 weeks. Removing security view restrictions. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
|||||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||||
Comment 1 by infe...@chromium.org
, Jun 12 2016Status: Assigned (was: Available)